Privacy Policy

Last updated: August 19, 2026

Offer Times is a browser extension that lets you select open time slots from Google Calendar or Outlook on the Web and share them as formatted availability text. It can optionally take bookings on a personal booking link, and can optionally connect a video provider so that a meeting link is added to the invite. This policy explains what data is accessed, how it is used, and what it does not do. If this policy changes materially, the updated version will be posted here with a revised date.

Google API Services compliance

Offer Times' use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google user data accessed via Google APIs is used only to provide and improve features that are visible and prominent in the Offer Times interface, and is never transferred, sold, or used for advertising, profiling, or any purpose unrelated to the core functionality described in this policy.

Data Accessed

Offer Times requests access to your Google Calendar via the calendar.events scope. When you first use the Hold feature, Google will display a permission screen asking you to authorize Offer Times to create calendar events on your behalf — this is Google's standard authorization process and can be revoked at any time. This permission is used exclusively to create placeholder "hold" events on your primary Google Calendar when you use the Hold feature. The extension reads the Google Calendar page in your browser only to identify the time slots you have selected — it does not read, access, or transmit existing event titles, descriptions, attendees, or any other calendar content.

If you use Copy only (without Hold), no Google Calendar API access occurs at all — your selected times are formatted and written directly to your clipboard. Offer Times also works with Outlook on the Web; when used with Outlook, the calendar.events scope is never requested or used, as Hold is not currently supported on Outlook.

Data Usage

The calendar.events permission is used for one purpose only: creating hold events on your calendar when you click the Hold button. These events are created in real time in response to your explicit action. No Google user data is processed for any other purpose, used for advertising, or combined with data from other sources.

Data Sharing

Offer Times does not share any Google user data with third parties. Calendar data accessed via the Google Calendar API is never transmitted to any Offer Times server, sold, or disclosed to any outside party for any purpose.

Zoom integration

Connecting Zoom is optional. Nothing described in this section happens unless you explicitly connect a Zoom account from the Offer Times settings and approve Zoom's authorization screen. If you never connect Zoom, Offer Times holds no Zoom data of any kind.

When connected, Offer Times requests two Zoom scopes: meeting:write:meeting, used to create a Zoom meeting on your own Zoom account when a guest books a video meeting with you and to read back that meeting's join link; and user:read:user, used once to read the email address of the account you connected so the settings screen can show you which Zoom account links are being created on. Offer Times does not join, record, transcribe, or read the contents of any meeting, and has no access to your Zoom recordings, chat, participants, contacts, or to any meeting that was not created by Offer Times.

What is stored: an encrypted Zoom refresh token, held only so that links can be created for future bookings without asking you to reauthorize each time; your Zoom account identifier and login email address, used to display the connected account; and the join link of each meeting Offer Times created, kept on that booking so the calendar invite, the confirmation email, and the calendar event all point at the same meeting. The refresh token is encrypted at rest with AES-256-GCM under a key held only by our server-side function, is never exposed in the product interface, and is transmitted only to Zoom over HTTPS.

Zoom data is never sold, and is never used for advertising, profiling, or training. It is not shared with any third party. The join link necessarily appears on the calendar invite and confirmation email sent to you and to the guest who booked the meeting, because that is what the link is for. Meetings created on your Zoom account remain in that account and are governed by Zoom's own privacy policy.

You can end the connection at any time, either from the Zoom tile in Offer Times settings or by removing Offer Times from the Zoom App Marketplace. When you disconnect, Offer Times revokes its access with Zoom and deletes the stored refresh token, account identifier, and email address immediately — there is no retention window and nothing is kept in a recoverable form. Join links on bookings already made remain on those records, because they are part of calendar events and emails already sent; you can ask us to remove those too via the feedback form. Step-by-step instructions are in the Zoom section of the guide.

Data Storage & Protection

Offer Times never stores your calendar content. Data read from the calendar page in your browser is used in real time to format your selected time slots and is never transmitted to Offer Times servers.

If you sign in to Offer Times, we store your email address and basic profile information (such as your name and profile photo) from your Google account. This information is used solely to operate your account — identifying your plan, syncing usage across devices, and linking accounts if you request it. It is never sold or shared with third parties.

We also store a randomly generated anonymous install identifier and aggregate usage counts (such as the number of copies made each month). These are used to enforce free-tier limits and understand aggregate usage of the product.

OAuth tokens used to authorize calendar access are managed by Chrome's built-in identity system. If you create an account, sign-in session tokens are managed by our authentication provider. All communication with our servers, and with the Google and Zoom APIs, uses HTTPS with TLS 1.2 or higher — our endpoints refuse TLS 1.0 and 1.1 outright rather than falling back to them.

Analytics

The extension uses Google Analytics 4 to collect anonymous usage events. These events contain only the anonymous install identifier and a general event name — no calendar content or personal data is included. Analytics data is used only to understand how the extension is used and to improve it. It is not sold or shared with any third party beyond Google Analytics' own data handling. See Google's privacy policy for how they handle analytics data.

Data Retention & Deletion

Offer Times does not retain any Google Calendar data. Calendar information accessed via the Google Calendar API is used in real time to complete the requested action and is never stored beyond that moment.

Extension preferences live in your browser's local storage and are deleted when you remove the extension. If you created an account, your account information and usage records remain on our servers until you delete your account; you can request deletion at any time from your account page or via the feedback form. OAuth tokens for calendar access are managed by Chrome and can be revoked at any time by visiting myaccount.google.com/permissions and removing Offer Times from the list of connected apps. Any hold events created on your Google Calendar can be deleted directly from your calendar at any time.

If you connected Zoom, disconnecting it deletes the stored Zoom credentials immediately, as described under Zoom integration above.

For any privacy-related questions, please use the feedback form.